VulnSea

Tagged “pip”

CVEs tagged pip, newest first.

4637 CVEsRSS

CVE-2026-46703Critical· 9.6
4mo ago

Boxlite: Path Traversal Vulnerability Leads to Arbitrary File Write on the Host

Boxlite: Path Traversal Vulnerability Leads to Arbitrary File Write on the Host

▾ Midnightboxlite · boxliteEPSS 0.78%via OSV
CVE-2026-46556Medium· 6.5
4mo ago

FlaskBB: SSRF in get_image_info() via unrestricted avatar URL

FlaskBB: SSRF in get_image_info() via unrestricted avatar URL

▾ Sunlitflaskbb · flaskbbEPSS 0.35%via OSV
CVE-2026-2734Medium· 6.5
4mo ago

MLflow authenticated users can enumerate any registered model versions due to lack of per-model permissions checks

MLflow authenticated users can enumerate any registered model versions due to lack of per-model permissions checks

▾ Sunlitmlflow · mlflowEPSS 0.50%via OSV
CVE-2026-8597High· 7.2
4mo ago

Amazon SageMaker Python SDK is missing integrity verification in its Triton inference handler

Amazon SageMaker Python SDK is missing integrity verification in its Triton inference handler

▾ Twilightsagemaker · sagemakerEPSS 0.61%via OSV
CVE-2026-48207Critical· 9.8
4mo ago

Apache Fory PyFory Deserialization of Untrusted Data

Apache Fory PyFory Deserialization of Untrusted Data

▾ Midnightpyfory · pyforyEPSS 0.82%via OSV
CVE-2026-46432High· 7.8
4mo ago

LMDeploy: Arbitrary code execution via hardcoded trust_remote_code=True in lmdeploy model initialization

LMDeploy: Arbitrary code execution via hardcoded trust_remote_code=True in lmdeploy model initialization

▾ Twilightlmdeploy · lmdeployEPSS 0.20%via OSV
CVE-2026-46678Medium· 6.8
4mo ago

Pydantic AI: SSRF cloud-metadata blocklist bypass via IPv4-mapped IPv6 (Incomplete fix of CVE-2026-25580)

Pydantic AI: SSRF cloud-metadata blocklist bypass via IPv4-mapped IPv6 (Incomplete fix of CVE-2026-25580)

▾ Sunlitpydantic-ai · pydantic-aiEPSS 0.38%via OSV
CVE-2026-46517High· 7.8
4mo ago

lmdeploy: Hardcoded trust_remote_code=True is an implicit unsafe remote-code load path with no user opt-out

lmdeploy: Hardcoded trust_remote_code=True is an implicit unsafe remote-code load path with no user opt-out

▾ Twilightlmdeploy · lmdeployEPSS 0.43%via OSV
CVE-2026-46561Medium· 5.0
4mo ago

pyload-ng: SSRF via HTTP Redirect Bypass in parse_urls API

pyload-ng: SSRF via HTTP Redirect Bypass in parse_urls API

▾ Sunlitpyload-ng · pyload-ngEPSS 0.29%via OSV
CVE-2026-8596High· 7.2
4mo ago

Cleartext storage of HMAC signing key in Amazon SageMaker Python SDK ModelBuilder/Serve path

Cleartext storage of HMAC signing key in Amazon SageMaker Python SDK ModelBuilder/Serve path

▾ Twilightsagemaker · sagemakerEPSS 0.80%via OSV
CVE-2026-46486Medium
4mo ago

Mobile Verification Toolkit (MVT): Path Traversal via unsanitized File identifiers in iOS Backup processing

Mobile Verification Toolkit (MVT): Path Traversal via unsanitized File identifiers in iOS Backup processing

▾ Sunlitmvt · mvtEPSS 0.52%via OSV
CVE-2026-46645Medium· 4.3PoC
4mo ago

SQLAdmin: Authorization Bypass on `ajax_lookup`

SQLAdmin: Authorization Bypass on `ajax_lookup`

▾ Twilightsqladmin · sqladminEPSS 0.37%via OSV
CVE-2026-46497Low
4mo ago

Crawlee for Python: SSRF via sitemap-derived URLs

Crawlee for Python: SSRF via sitemap-derived URLs

▾ Sunlitcrawlee · crawleeEPSS 0.46%via OSV
CVE-2026-48989High
4mo ago

Windows-MCP: HTTP transports expose unauthenticated PowerShell control with wildcard CORS

Windows-MCP: HTTP transports expose unauthenticated PowerShell control with wildcard CORS

▾ Twilightwindows-mcp · windows-mcpEPSS 0.69%via OSV
CVE-2026-47102High· 8.8PoC
4mo ago

LiteLLM prior to 1.83.10 allows a user to modify their own user_role via the /user/update endpoint

LiteLLM prior to 1.83.10 allows a user to modify their own user_role via the /user/update endpoint. While the endpoint correctly restricts users to updating only their own account, it does not restrict which fields may be changed. A user…

▾ Midnightlitellm · litellmEPSS 0.82%via NVD
CVE-2026-47101High· 8.8PoC
4mo ago

LiteLLM prior to 1.83.14 allows an authenticated internal_user to create API keys with access to routes that their role does not permit

LiteLLM prior to 1.83.14 allows an authenticated internal_user to create API keys with access to routes that their role does not permit. When generating a key, the allowed_routes field is stored without verifying that the specified route…

▾ Midnightlitellm · litellmEPSS 1.3%via NVD
CVE-2026-45739Low· 3.1
4mo ago

Strawberry GraphQL: Default GraphiQL may expose HTTP headers in URLs

Strawberry GraphQL: Default GraphiQL may expose HTTP headers in URLs

▾ Sunlitstrawberry-graphql · strawberry-graphqlEPSS 0.36%via OSV
CVE-2025-51427High· 7.3
4mo ago

ModelScope is vulnerable to arbitrary code injection via a crafted module

ModelScope is vulnerable to arbitrary code injection via a crafted module

▾ Twilightmodelscope · modelscopeEPSS 0.52%via OSV
CVE-2026-46338Medium· 4.3
4mo ago

Regression in pymdownx.snippets reintroduces sibling-prefix path traversal bypass despite restrict_base_path

Regression in pymdownx.snippets reintroduces sibling-prefix path traversal bypass despite restrict_base_path

▾ Sunlitpymdown-extensions · pymdown-extensionsEPSS 0.40%via OSV
CVE-2026-46373High· 7.5
4mo ago

SQLFluff: Recursive Stack Overflow in Parser

SQLFluff: Recursive Stack Overflow in Parser

▾ Twilightsqlfluff · sqlfluffEPSS 0.46%via OSV
CVE-2026-46374High· 7.5
4mo ago

SQLFluff: Uncontrolled Resource Consumption in SQLFluff Parser

SQLFluff: Uncontrolled Resource Consumption in SQLFluff Parser

▾ Twilightsqlfluff · sqlfluffEPSS 0.46%via OSV
CVE-2026-8838Critical· 9.8PoC
4mo ago

Unsafe use of Python's eval() on server-received data in the vector_in() function in amazon-redshift-python-driver before 2.1.14 allows a rogue server or man-in-the-middle actor to execute arbitrary code on the client

Unsafe use of Python's eval() on server-received data in the vector_in() function in amazon-redshift-python-driver before 2.1.14 allows a rogue server or man-in-the-middle actor to execute arbitrary code on the client. To remediate t…

▾ Abyssalredshift-connector · redshift-connectorEPSS 0.80%via NVD
CVE-2026-45539High· 7.4
4mo ago

Microsoft APM: Symlinks under `.apm/prompts/` and `.apm/agents/` are dereferenced during `apm install`, copying host-local file contents …

Microsoft APM: Symlinks under `.apm/prompts/` and `.apm/agents/` are dereferenced during `apm install`, copying host-local file contents into the project tree

▾ Twilightapm · apmEPSS 1.1%via OSV
CVE-2026-45554Medium· 5.3
4mo ago

NiceGUI: Unauthenticated log-volume denial of service in dynamic resource routes

NiceGUI: Unauthenticated log-volume denial of service in dynamic resource routes

▾ Sunlitnicegui · niceguiEPSS 0.60%via OSV
CVE-2026-45727High
4mo ago

CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion

CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion

▾ Twilightcloakbrowser · cloakbrowserEPSS 0.65%via OSV
CVE-2026-45553High· 7.5
4mo ago

NiceGUI: Local file disclosure via Docutils file insertion in ui.restructured_text()

NiceGUI: Local file disclosure via Docutils file insertion in ui.restructured_text()

▾ Twilightnicegui · niceguiEPSS 0.43%via OSV
CVE-2026-4137High· 7.0
4mo ago

MLFlow Creates a Temporary File With Insecure Permissions

MLFlow Creates a Temporary File With Insecure Permissions

▾ Twilightmlflow · mlflowEPSS 0.16%via OSV
CVE-2026-8754Medium· 6.3
4mo ago

AstrBot: File upload vulnerability in the function post_file of the file astrbot/dashboard/routes/chat.py

AstrBot: File upload vulnerability in the function post_file of the file astrbot/dashboard/routes/chat.py

▾ Sunlitastrbot · astrbotEPSS 0.43%via OSV
CVE-2026-46383Medium· 5.5
4mo ago

Microsoft APM: Windows absolute-path tar member overwrite during legacy-bundle probing in `apm install`

Microsoft APM: Windows absolute-path tar member overwrite during legacy-bundle probing in `apm install`

▾ Sunlitapm-cli · apm-cliEPSS 0.90%via OSV
CVE-2026-2652High· 8.6PoC
4mo ago

MLflow: unauthenticated access to certain FastAPI routes

MLflow: unauthenticated access to certain FastAPI routes

▾ Midnightmlflow · mlflowEPSS 1.4%via OSV
CVEs tagged “pip” — page 56 · VulnSea